Trying to login to the forum, but my account was completely removed...
My last message was about the arabic spam being posted here at the forum, the forum was hacked
Since no admin is answering my urgent question, and i have no means of reaching admins any other way, i must assume that it was indeed a hacker that hacked this forum and removed my account after my post titled 'Spam alert' following all kind of arabic posts which were removed later.
Not only was my account removed, but also all of my posts. Only remnants of my posts, like quote's of my earlier posts, are still visible.
The big question is: if the forum is hacked, is the Domoticz source code master branch also hacked and infected with trojan horses?
Remember that Domoticz is running at very heart of my home and a hacked Domoticz poses a very real threat to my own security since Domoticz can disable my home security system. It makes me consider switching to OpenHab which looks more mature and secure then Domoticz at this point...
Last edited by Lisa on Tuesday 04 July 2017 18:07, edited 1 time in total.
Lisa wrote:Since no admin is answering my urgent question, and i have no means of reaching admins any other way, i must assume that it was indeed a hacker that hacked this forum and removed my account after my post titled 'Spam alert' following all kind of arabic posts which were removed later.
Not only was my account removed, but also all of my posts. Only remnants of my posts, like quote's of my earlier posts, are still visible.
The big question is: if the forum is hacked, is the Domoticz source code master branch also hacked and infected with trojan horses?
Remember that Domoticz is running at very heart of my home and a hacked Domoticz poses a very real threat to my own security since Domitcz can disable my home security system. It makes me consider switching to OpenHab which looks more mature and secure then Domoticz at this point...
I've seen your answer on this one arabic post.
I think it was an irrevocable action by an admin, who may confused you with the spammers. But as said, only an assumption.
Your question about the forum being hacked is valid. But the forum has nothing to do with the development (source code) of Domoticz. I'm taking a guess here but I don't think that Domoticz itself can become vulnerable if the forum is being hacked.
That being said, is this phpBB forum up-to-date? The forum version is only visible for admins but I hope they take security serious.
Eraser wrote:Your question about the forum being hacked is valid. But the forum has nothing to do with the development (source code) of Domoticz. I'm taking a guess here but I don't think that Domoticz itself can become vulnerable if the forum is being hacked.
That being said, is this phpBB forum up-to-date? The forum version is only visible for admins but I hope they take security serious.
Looking at your name I have an idea who might have removed the user.
Eraser wrote:Your question about the forum being hacked is valid. But the forum has nothing to do with the development (source code) of Domoticz. I'm taking a guess here but I don't think that Domoticz itself can become vulnerable if the forum is being hacked.
That being said, is this phpBB forum up-to-date? The forum version is only visible for admins but I hope they take security serious.
IF you gain access to the admin password, then it might be possible that the same password is used for the sourcecode admin. I dunno at this point, i'm just worried...
Eraser wrote:Your question about the forum being hacked is valid. But the forum has nothing to do with the development (source code) of Domoticz. I'm taking a guess here but I don't think that Domoticz itself can become vulnerable if the forum is being hacked.
That being said, is this phpBB forum up-to-date? The forum version is only visible for admins but I hope they take security serious.
Looking at your name I have an idea who might have removed the user.
Eddiever wrote:Oh Lisa, if you don't get that one security isn't your biggest problem
Since that IS my name, it seems my biggest problem is you misogynistic lot... Maybe it is time anyway to find a more professional environment...
I'm getting a MCP Alert here.
Eddiever wrote:Oh Lisa, if you don't get that one security isn't your biggest problem
Since that IS my name, it seems my biggest problem is you misogynistic lot... Maybe it is time anyway to find a more professional environment...
I'm getting a MCP Alert here.
Lisa, Lisa, Lisa,
The remark was not against your name but to Eraser............ An eraser has the tendency to remove things.......
Domoticz V4.10717, RPi2 -> Linux raspberrypi 4.4.47-v7+ , RFXCOM - RFXtrx433 USB 433.92MHz ,RAZBERRY2 and OpenZWave USB Version: 1.4-2363-g1f10253-dirty
Eddiever wrote:Oh Lisa, if you don't get that one security isn't your biggest problem
Since that IS my name, it seems my biggest problem is you misogynistic lot... Maybe it is time anyway to find a more professional environment...
I'm getting a MCP Alert here.
Whow, please hold your horses. Because you didn't get it I am a misogynistic lot? Maybe you are a misandrist? I hope the explanation from K3rryBlue opened your eyes otherwise let me know and I will try to explain it even beter.
(it was never my intention to hurt you/anybody, just make a little fun)
Eraser wrote:Your question about the forum being hacked is valid. But the forum has nothing to do with the development (source code) of Domoticz. I'm taking a guess here but I don't think that Domoticz itself can become vulnerable if the forum is being hacked.
That being said, is this phpBB forum up-to-date? The forum version is only visible for admins but I hope they take security serious.
According to the changelog, the forum runs version 3.1.7
Domoticz V4.10717, RPi2 -> Linux raspberrypi 4.4.47-v7+ , RFXCOM - RFXtrx433 USB 433.92MHz ,RAZBERRY2 and OpenZWave USB Version: 1.4-2363-g1f10253-dirty
Eraser wrote:Your question about the forum being hacked is valid. But the forum has nothing to do with the development (source code) of Domoticz. I'm taking a guess here but I don't think that Domoticz itself can become vulnerable if the forum is being hacked.
That being said, is this phpBB forum up-to-date? The forum version is only visible for admins but I hope they take security serious.
According to the changelog, the forum runs version 3.1.7
PHPBB 3.1.7 is released in jan/2016 and is more then 1.5 years old...
Unfortunately, extracting the change log is not an accurate science, but the best estimate guess we can do without admin rights.
Hiding the PHPBB version will be a best kept secret of every PHPBB admin
Domoticz V4.10717, RPi2 -> Linux raspberrypi 4.4.47-v7+ , RFXCOM - RFXtrx433 USB 433.92MHz ,RAZBERRY2 and OpenZWave USB Version: 1.4-2363-g1f10253-dirty
It could be very well that if i see a message in a language i do not understand, that i consider this as spam or inappropriate.
As this is also an English forum, you should also post in English.
So, if you posted in Arabic, then me or any administrator could have removed your account.
Then again, i did not receive any message (to admin or directly to info) from you...
Also mind you, that anyone can register here, even a manual spammer sending spam...